Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-22373 | Ericsson Catalog Manager and Ericsson Order Care APIs do not have authentication enabled by default. Authentication checks can be configured to remediate the information disclosure issue. |
Solution
No solution given by the vendor.
Workaround
If you are unable to upgrade to the fixed versions where the required flag will be enabled by default, authentication checks can be configured under System Configuration to remediate the issue.
Fri, 19 Sep 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ericsson
Ericsson catalog Manager Ericsson order Care |
|
| Vendors & Products |
Ericsson
Ericsson catalog Manager Ericsson order Care |
Thu, 18 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 18 Sep 2025 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Ericsson Catalog Manager and Ericsson Order Care APIs do not have authentication enabled by default. Authentication checks can be configured to remediate the information disclosure issue. | |
| Title | Ericsson Catalog Manager and Ericsson Order Care - Exposure of Sensitive Information Vulnerability | |
| Weaknesses | CWE-200 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ERIC
Published:
Updated: 2025-09-18T13:31:46.260Z
Reserved: 2024-02-02T21:33:13.076Z
Link: CVE-2024-25011
Updated: 2025-09-18T13:31:39.588Z
Status : Awaiting Analysis
Published: 2025-09-18T12:15:38.060
Modified: 2025-09-18T13:43:34.310
Link: CVE-2024-25011
No data.
OpenCVE Enrichment
Updated: 2025-09-19T09:36:46Z
EUVD